- Analyze and respond to validated security incidents, determining severity and impact per CJCSM B
- Support incident response campaigns by organizing response efforts, tracking progress, and ensuring proper documentation
- Coordinate with reporting agencies and subscriber sites to ensure timely and accurate incident reporting
- Perform network and host-based digital forensics on Windows and other operating systems as needed
- Conduct log correlation analysis using Splunk and supplemental tools to identify patterns in network and system activity
- Compile and maintain internal SOP documentation, ensuring compliance with CJCSM B and other directives
- Provide 24/7 support for incident response during assigned shifts, including non-core hours
- Support IDS/IPS signature development and implementation under guidance
- Overtime may be required to support incident response actions (Surge)
- Operations are conducted 24/7/365 across three regional operation centers (ROC)
- Each ROC works four ten-hour shifts (Sunday-Wednesday or Wednesday-Saturday)
- Shift placement is at the discretion of assigned managers
- Up to 10% travel may be required, may include international travel
- Must maintain a current US Passport
- Must be a current Adapt Forward Employee
- Bachelor's Degree in relevant discipline or at least 5 years of experience working in a CSSP, SOC, or similar environment
- At least 1 year experience conducting in-depth analysis or incident response with any of the following tools: Splunk, Elastic, Corelight, Palo Alto Panorama, Windows Azure/Defender, AWS, Crowdstrike, Volatility, or SIFT Workstation
- At least 1 year of experience authoring technical documentation for security incidents, such as creating detailed investigation timelines, documenting indicators of compromise (IOCs), or writing shift turnover reports for ongoing incidents
- Must be a U.S. Citizen
- Demonstrated experience conducting in-depth log correlation and analysis for complex security incidents across multiple data sources (e.g., EDR, IDS/IPS, DNS, & operating system logging solutions)
- Advanced proficiency in writing complex search queries in SIEM platforms (e.g., Splunk, Elastic, Sentinel) to identify anomalous or malicious activity
- Experience building advanced scripts (e.g., in Python, PowerShell, Bash, etc) to automate detection and analysis tasks
- Experience integrating and operationalizing threat intelligence feeds to create new detection mechanisms or enrich existing data
- Previous experience informally mentoring junior analysts, creating training documentation, or leading small-group knowledge-sharing sessions
- Demonstrated passion for cybersecurity and continuous learning through active participation in Capture the Flag (CTF) events, (e.g., TryHackMe, Hack The Box, etc)
- Completion of practical, hands-on cybersecurity training courses or certifications (e.g., Security Blue Team BTL1/BTL2, AntiSyphon training courses, OffSec OSCP)
- Must have DoD 8570 IAT Level II and CSSP IR compliant certifications
- Comprehensive Physical Wellness Package, including Medical, Dental, Vision Care, plus Flexible Spending Accounts for health- and dependent-care are included in our standard benefits plan.
- 401k Retirement Plan with Matching Contribution is immediately available and vested.
- Annual Training Budget to be used for conference attendance, school enrollment, certification programs, and associated travel expenses.
- Eleven Federal Holidays, plus three weeks of PTO/vacation/sick leave that accrues at a rate of ten hours per month.
- Employee Assistance Program: Counseling/legal assistance and other employee well-being programs are also offered.
-
DCO Watch Analyst Tier I CHS
1 month ago
Only for registered members North CharlestonAs a Tier 1 Defensive Cyber Operations Watch Analyst you will be responsible for monitoring and triaging security events within a Cybersecurity Service Provider (CSSP) environment. · Monitor network and host-based systems for suspicious activity using provided tools and SOPsValid ...
-
Defensive Cyber Operations Watch Analyst Tier II
4 weeks ago
Only for registered members North CharlestonJob summary Defensive Cyber Operations Watch Analyst Tier II As a Tier 2 Defensive Cyber Operations (DCO) Watch Analyst you will responsible for analyzing and responding to security incidents within a Cybersecurity Service Provider (CSSP) environment In addition to investigating ...
- Only for registered members North Charleston
As a Tier 2 Defensive Cyber Operations (DCO) Watch Analyst you will be responsible for analyzing and responding to security incidents within a Cybersecurity Service Provider (CSSP) environment. · ...
- Only for registered members North Charleston
+As a Defensive Cyber Operations (DCO) Watch Forensics Analyst, you will be responsible for leading complex digital forensic investigations on compromised systems across both unclassified and classified networks. · +Bachelor's Degree in relevant discipline and 3 years or at least ...
-
Defensive Cyber Operations Watch Analyst Tier I
4 weeks ago
Only for registered members North CharlestonWe are seeking a Defensive Cyber Operations (DCO) Watch Analyst to monitor and triage security events within a Cybersecurity Service Provider (CSSP) environment. · ...
-
Defensive Cyber Operation Watch Malware Analyst
4 weeks ago
Only for registered members North CharlestonServir como un experto senior en materia sombrilla responsable del análisis profundo y la ingeniería inversa del código malicioso que ataca las redes de los clientes. · ...
-
Travel Nurse RN - Neurology - 1,616 per week
1 week ago
Supplemental Health Care CharlestonAt Supplemental Health Care, a simple belief in the power of caring guides a unique commitment to world-class service in healthcare staffing. · We are seeking travel nurses for various positions including Neurology Registered Nurses. We provide excellent pay, benefits, and suppor ...
- Only for registered members Charleston
Ardor Health Solutions is looking for a Speech Language Pathologist to join our travel team in a SNF UNIT setting, in CHARLESTON, WV This is a full time travel contract position. · ...
-
Virtual Platform Administrator
1 week ago
Only for registered members Virginia, United StatesWe are seeking a Virtual Platform Administrator to join our team supporting Cloud and Infrastructure Services at Defense Logistics Agency (DLA). TekSynap is a fast-growing high-tech company that understands both the pace of technology today and the need to have a comprehensive we ...
- Only for registered members Philippi, WV
Ardor Health Solutions is seeking an experienced Travel Speech Language Pathologist (SLP) to join their team in Philippi WV This full-time travel contract position begins January 12th 2026 and ends April 13th. · ...
Defensive Cyber Operations Watch Analyst Tier II - North Charleston - Adapt Forward
Description
Cyber Security Analyst I, DCO Watch Analyst Tier II
Internal Only
North Charleston,SC
Secret Clearance required to start, with ability to obtain TS/SCI
As a Tier 2 Defensive Cyber Operations (DCO) Watch Analyst you will responsible for analyzing and responding to security incidents within a Cybersecurity Service Provider (CSSP) environment. In addition to investigating validated events and mitigating incidents, you will help improve the quality of Tier 1 analysis by mentoring junior analysts. You will also assist the watch officer as needed, work on projects to enhance CSSP capabilities, and perform independent problem-solving while adhering to CJCSM B reporting standards.
Position Requirements and Duties
Minimum Qualifications
Desired Qualifications
Required Certifications
Company Overview
Adapt Forward is a cybersecurity solutions provider for some of the nation's most valuable information systems. Leveraging advanced threat assessment technology and experience in building high-level information security infrastructure, we develop adaptive solutions uniquely tailored to our customers' business objectives to protect sensitive data against sophisticated threats in an increasingly complex security environment.
Summary of Benefits
Equal opportunity employer as to all protected groups, including protected veterans and individuals with disabilities.
Adapt Forward's Veteran/Disability Affirmative Action Plan narrative section is available for inspection upon request during normal business hours at the Human Resources office and may be requested by contacting Human Resources at
Powered by JazzHR
-
DCO Watch Analyst Tier I CHS
Only for registered members North Charleston
-
Defensive Cyber Operations Watch Analyst Tier II
Only for registered members North Charleston
-
Defensive Cyber Operations Watch Analyst Tier II
Only for registered members North Charleston
-
Defensive Cyber Operations Forensic Analyst Tier III
Only for registered members North Charleston
-
Defensive Cyber Operations Watch Analyst Tier I
Only for registered members North Charleston
-
Defensive Cyber Operation Watch Malware Analyst
Only for registered members North Charleston
-
Travel Nurse RN - Neurology - 1,616 per week
Supplemental Health Care- Charleston
-
Travel Speech Language Pathologist (SLP) - 2,208 per week in Charleston, WV
Only for registered members Charleston
-
Virtual Platform Administrator
Only for registered members Virginia, United States
-
Travel Speech Language Pathologist (SLP) - 2,401 per week in Philippi, WV
Only for registered members Philippi, WV